CVE-2004-0078: Buffer Overflow
Published Mar 3, 2004
·Updated
Buffer overflow in the index menu code (menupadstring of menu.c) for Mutt 1.4.1 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via certain mail messages.
Affected Software
18 affected components
Mutt Mutt=1.3.12.1
Mutt Mutt=1.2.5.5
Mutt Mutt=1.3.27
Mutt Mutt=1.3.16
Mutt Mutt=1.2.5
Mutt Mutt=1.3.25
Mutt Mutt=1.4.1
Mutt Mutt=1.3.22
Mutt Mutt=1.2.5.12
Mutt Mutt=1.2.5.1
Mutt Mutt=1.2.5.4
Mutt Mutt=1.3.28
Mutt Mutt=1.3.24
Mutt Mutt=1.4.0
Mutt Mutt=1.2.1
Mutt Mutt=1.3.17
Mutt Mutt=1.2.5.12_ol
Mutt Mutt=1.3.12
Remediation
Patch Available
Patch Available
Patch Available
Event History
Mar 3, 2004
CVE Published
05:00 AM
Sep 1, 2004
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2004-0078?
CVE-2004-0078 is classified as a critical vulnerability due to its potential to cause a denial of service and execute arbitrary code.
2
How do I fix CVE-2004-0078?
To fix CVE-2004-0078, you should upgrade to Mutt version 1.4.2 or later.
3
What software is affected by CVE-2004-0078?
CVE-2004-0078 affects Mutt versions 1.4.1 and earlier, including 1.3.12.1, 1.2.5.5, and others.
4
What type of vulnerability is CVE-2004-0078?
CVE-2004-0078 is a buffer overflow vulnerability.
5
Can CVE-2004-0078 be exploited remotely?
Yes, CVE-2004-0078 can be exploited remotely through specially crafted mail messages.